View Cluster Admission Events

Similar to CI/CD events, the Cluster Admission events are listed under the Events tab. Search for Cluster Admission events using the Search bar to get more details. You can see the event policy evaluation whether the event is Passed, or Failed. This is based on the evaluation of the associated policy rule. 

In the absence of a default Admission Controller policy (Organization Level), the following event message is generated -
"Admission review skipped, due to the absence of a default policy."

Column Description
EVENT Shows the name of the cluster admission event.
EVALUATION Specify policy evaluation results. 

Valid values:
  • PASSED - The cluster admission event is allowed.
  • FAILED - The cluster admission event is denied.
ENFORCEMENT ACTION Inspects the incoming request.

Valid values:

  1. AUDIT: Irrespective of the policy enforced, your admission request is always allowed.
  2. BLOCK: The cluster admission event will be validated, and based on the evaluation, your action will be either allowed or denied.
POLICY SCOPE Specify the scope of the associated cluster admission policy.

Valid values:

  • Cluster - Indicates the Cluster level policy
  • Namespace - Indicates the Namespace level policy
  • Organization - Indicates the Organization level policy
  • No Policy - No policy is assigned to the cluster admission event.
CLUSTER Shows the name of the cluster.
NAMESPACE Specify the namespace associated with the cluster admission event.
CREATED ON Specify the event creation time.

 

 

Click View Details to see Summary about the selected Cluster Admission event.

The Summary page provides,

  • Evaluation of the cluster admission - Passed or Failed
  • The Enforcement action based on the evaluation - Audit, or Block. 
  • The Event Details section provides event details such as description and ID.
  • The Policy Details section describes policy name, version, rules and scope.
  • The Admission Controller Details provides you cluster name, namespace, operation (create). 

The Image Security page shows the total images associated with that event along with its associated rules and rule details.

The POD Security page shows the Admission Request and further rule details.

The Exclusions page shows you excluded images, namespaces, and vulnerabilities.

 

Go back to view the 'Cluster Admission' event listing.